New features of user's behavior to distributed denial of service attacks detection in application layer

Silvia Bravo, David Mauricio

Research output: Contribution to journalArticlepeer-review

Abstract

Distributed Denial of Service (DDoS) attacks are a threat to the security of red. In recent years, these attacks have been directed especially towards the application layer. This phenomenon is mainly due to the large number of existing tools for the generation of this type of attack. The highest detection rate achieved by a method in the application capacity is 98.5%. Therefore, the problem of detecting DDoS attacks persists. In this work an alternative of detection based on the dynamism of the web user is proposed. To do this, evaluate the user's characteristics, mouse functions and right click. For the evaluation, a data set of 11055 requests was used, from which the characteristics were extracted and entered into a classification algorithm. To that end, it can be applied once in Java for the classification of real users and DDoS attacks. The results showed that the evaluated characteristics achieved an efficiency of 100%. Therefore, it is concluded that these characteristics show the dynamism of the user and can be used in a detection method of DDoS attacks.

Original languageEnglish
Pages (from-to)164-178
Number of pages15
JournalInternational Journal of Online Engineering
Volume14
Issue number12
DOIs
StatePublished - 2018
Externally publishedYes

Bibliographical note

Publisher Copyright:
© 2018 Kassel University Press GmbH.

Keywords

  • Application layer
  • Attack detection
  • DDoS
  • User's behavior

Fingerprint

Dive into the research topics of 'New features of user's behavior to distributed denial of service attacks detection in application layer'. Together they form a unique fingerprint.

Cite this